VNU-UET Repository

A Novel Framework to Classify Malware in MIPS Architecture-based IoT Devices

Tran, Nghi Phu and Hoang, Dang Kien and Ngo, Quoc Dung and Nguyen, Dai Tho and Nguyen, Ngoc Binh (2019) A Novel Framework to Classify Malware in MIPS Architecture-based IoT Devices. Security and Communication Networks . ISSN 1939-0114 (In Press)

[img]
Preview
PDF
Download (2MB) | Preview

Abstract

Malware on devices connected to the Internet via the Internet of Things (IoT) ) is evolving and is a core component of the fourth industrial revolution. IoT devices use the MIPS architecture with a large proportion running on embedded Linux operating systems, but the automatic analysis of IoT malware has not resolved. We proposed a framework to classify malware in IoT devices by using MIPS-based system behavior (system call - syscall) got from our F-Sandbox passive process and machine learning techniques. The F-Sandbox is a new type for IoT sandbox, automatically created from the real firmware of the specialized IoT devices, inheriting the specialized environment in the real firmware, therefore creating a diverse environment for sandboxing as an important characteristic of IoT sandbox. This framework classifies five families of IoT malware with F1-Weight = 97.44%.

Item Type: Article
Subjects: Information Technology (IT)
Scopus-indexed journals
ISI-indexed journals
Divisions: Faculty of Information Technology (FIT)
Depositing User: Dr. Dai Tho Nguyen
Date Deposited: 09 Dec 2019 09:15
Last Modified: 09 Dec 2019 09:15
URI: http://eprints.uet.vnu.edu.vn/eprints/id/eprint/3757

Actions (login required)

View Item View Item